SHF: Small: Architectural Support for Securing Deep Neural Networks
SHF: Small: Architectural Support for Securing Deep Neural Networks
批准号:
1910413
负责人:
Youtao Zhang
金额:
$50.0万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2019
资助国家:
美国
项目状态:
已结题
起止时间:
2019-10-01 至 2024-09-30
中文摘要
基于深度神经网络的机器学习算法在垃圾邮件检测、流量分析、入侵检测、医疗预测、金融预测等多个领域取得了显著的成果。神经网络(NN)驱动的技术,如图像/语音识别和个人辅助应用程序,极大地提高了生活质量,已成为人们日常依赖的公用事业。基于神经网络的机器学习算法通常托管在云服务器上,作为提供给用户的服务,这涉及到它们的安全性,即如何保护用户的私人数据免受黑客以及可信但好奇的服务器的攻击;如何保护模型盗版和加强知识产权保护。采用传统的基于加密的防御往往会给系统带来严重的性能下降。该项目解决了这些问题,从而有助于在计算云和移动客户端中增加机器学习加速器架构的使用。确保用户的IP得到安全保护。这项工作将研究与高等教育结合起来,包括本科和研究生阶段的课程创新,以及向代表性不足的群体和K-12教育的推广。该项目为用户从云获取服务开发了一个安全、隐私保护、保密和防篡改的环境。它侧重于三个任务。1)通过用户依赖的建模来保护IP:开发轻量级训练和推理方法,以产生只能对合法IP所有者执行的模型。这种依赖可以来自目标硬件或IP所有者之间共享的秘密。2)数据隐私保护:为保护隐私的加密同态加密(HE)开发了加速技术,该技术在加密数据上运行神经网络,但可能会使推理速度降低几个数量级。对HE进行了分析,选择了最合适的加速器,并进行了HE在加速器上的优化映射,使其性能最大化。3)保护神经网络的机密性和完整性,防御侧信道攻击:通过增加内存加密、认证、总线保护和隔离,保护神经网络的动态执行,防御针对加速器硬件的复杂攻击。本项目中提出的设计利用了神经网络的独特性,并实现了对性能的最小影响。该奖项反映了美国国家科学基金会的法定使命,并通过使用基金会的知识价值和更广泛的影响审查标准进行评估,被认为值得支持。
英文摘要
Machine learning algorithms based on deep neural networks have achieved remarkable results in a variety of domains such as spam detection, traffic analysis, intrusion detection, medical predictions, and financial predictions. Neural network (NN) driven technologies such as image/voice recognition and personal assistance apps have greatly improved the quality of life and have become utilities people rely on everyday. NN-based machine learning algorithms are often hosted on cloud servers as a service provided to users, which concerns their security, that is, how to protect user private data from hackers as well as trusted-yet-curious servers; how to protect model piracy and enforce intellectual property (IP) protection. Adopting traditional encryption based defenses tends to introduce severe performance degradation to the system. This project addresses these issues and thus help increase the use of accelerator architectures for machine learning in the computing cloud and mobile clients. It assures the IP of users are securely protected. The work integrates research with high education with curricular innovation at both the undergraduate and graduate levels and with outreach to under-represented groups and K-12 education. This project develops a secure, privacy-preserving and confidential and tamper-proofing environment for users to acquire services from the cloud. It focuses on three tasks. 1) IP protection via user dependent modeling: lightweight training and inference methodologies are developed to produce models that can only execute on legitimate IP owners. Such dependency can be derived from either target hardware or a secret shared among IP owners. 2) Data privacy protection: acceleration techniques are developed for a privacy-preserving cryptographic homomorphic encryption (HE) which runs NN on encrypted data but could slow down an inference by several orders of magnitude. HE is analyzed, the most suitable accelerator is selected and optimized mapping of HE onto the accelerator is developed to maximize its performance. 3) Protection for confidentiality and integrity of NN, and defend side-channel attacks: protect dynamic execution of NNs by adding memory encryption, authentication, bus protection and isolation to defend sophisticated attacks targeted at the accelerator hardware. The proposed designs in this project exploit uniqueness of NN and achieve minimum impact on performance.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(36)
专著(0)
科研奖励(0)
会议论文
登录
查看更多内容
A Novel Trust Model Based Overlapping Community Detection Algorithm for Social Networks
一种基于信任模型的社交网络重叠社区检测算法
DOI:
10.1109/tkde.2019.2914201
发表时间:
2020-11
期刊:
IEEE Transactions on Knowledge and Data Engineering
影响因子:
8.9
作者:
[Shuai Ding, Zijie Yue, Shanlin Yang, Feng Niu, Youtao Zhang]
通讯作者:
Youtao Zhang
Reducing DRAM Access Latency via Helper Rows
通过辅助行减少 DRAM 访问延迟
DOI:
10.1109/dac18072.2020.9218719
发表时间:
2020
期刊:
The 57th ACM/IEEE Design Automation Conference
影响因子:
--
作者:
[Xin, Xin, Zhang, Youtao, Yang, Jun]
通讯作者:
Yang, Jun
DOI:
10.1145/3503222.3507757
发表时间:
2022-02
期刊:
Proceedings of the 27th ACM International Conference on Architectural Support for Programming Languages and Operating Systems
影响因子:
--
作者:
[Boyuan Yang;Ruirong Chen;Kai Huang;Jun Yang;Wei Gao]
通讯作者:
Boyuan Yang;Ruirong Chen;Kai Huang;Jun Yang;Wei Gao
PageCmp: Bandwidth Efficient Page Deduplication through In-memory Page Comparison
PageCmp:通过内存中页面比较实现带宽高效的页面重复数据删除
DOI:
10.1109/isvlsi.2019.00023
发表时间:
2019
期刊:
2019 IEEE Computer Society Annual Symposium on VLSI
影响因子:
--
作者:
[Raoufi, Mehrnoosh, Deng, Quan, Zhang, Youtao, Yang, Jun]
通讯作者:
Yang, Jun
CacheTree: Reducing Integrity Verification Overhead of Secure Nonvolatile Memories
CacheTree:减少安全非易失性存储器的完整性验证开销
DOI:
10.1109/tcad.2020.3015925
发表时间:
2021-07-01
期刊:
IEEE TRANSACTIONS ON COMPUTER-AIDED DESIGN OF INTEGRATED CIRCUITS AND SYSTEMS
影响因子:
2.9
作者:
[Chen, Zhengguo, Zhang, Youtao, Xiao, Nong]
通讯作者:
Xiao, Nong
共 34 条
SHF: Small: Hardware-Software Co-design for Privacy Protection on Deep Learning-based Recommendation Systems
-
批准号:2334628
-
项目类别:Standard Grant
-
资助金额:$58.2万
-
财政年份:2024
-
负责人:Youtao Zhang
-
依托单位:
FoMR: A Software and Hardware Co-Design for Addressing the Performance Bottlenecks in Secure Non-Volatile Memory
-
批准号:2011146
-
项目类别:Standard Grant
-
资助金额:$33.0万
-
财政年份:2020
-
负责人:Youtao Zhang
-
依托单位:
CCF: Student Travel Support for the 23rd International Conference on Parallel Architectures and Compilation Techniques (PACT 2014)
-
批准号:1445507
-
项目类别:Standard Grant
-
资助金额:$1.0万
-
财政年份:2014
-
负责人:Youtao Zhang
-
依托单位:
CAREER: A Compilation Framework for the Development of High Performance Secure Applications on Trusted Processors
-
批准号:0641177
-
项目类别:Continuing Grant
-
资助金额:$0.0万
-
财政年份:2006
-
负责人:Youtao Zhang
-
依托单位:
CAREER: A Compilation Framework for the Development of High Performance Secure Applications on Trusted Processors
-
批准号:0447934
-
项目类别:Continuing Grant
-
资助金额:$40.0万
-
财政年份:2005
-
负责人:Youtao Zhang
-
依托单位:
Collaborative Research: Architectural Support for Security and Privacy Protection on Uni- and Multi- Processors
-
批准号:0429986
-
项目类别:Standard Grant
-
资助金额:$2.6万
-
财政年份:2004
-
负责人:Youtao Zhang
-
依托单位:
国内基金
海外基金
登录
查看更多内容
昼夜节律性small RNA在血斑形成时间推断中的法医学应用研究
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2024
-
负责人:
-
依托单位:
tRNA-derived small RNA上调YBX1/CCL5通路参与硼替佐米诱导慢性疼痛的机制研究
-
批准号:
-
项目类别:省市级项目
-
资助金额:10.0万元
-
批准年份:2022
-
负责人:张祥忠
-
依托单位:
Small RNA调控I-F型CRISPR-Cas适应性免疫性的应答及分子机制
-
批准号:32000033
-
项目类别:青年科学基金项目
-
资助金额:24.0万元
-
批准年份:2020
-
负责人:林平
-
依托单位:
Small RNAs调控解淀粉芽胞杆菌FZB42生防功能的机制研究
-
批准号:31972324
-
项目类别:面上项目
-
资助金额:58.0万元
-
批准年份:2019
-
负责人:高学文
-
依托单位:
变异链球菌small RNAs连接LuxS密度感应与生物膜形成的机制研究
-
批准号:81900988
-
项目类别:青年科学基金项目
-
资助金额:21.0万元
-
批准年份:2019
-
负责人:毛梦莹
-
依托单位:
肠道细菌关键small RNAs在克罗恩病发生发展中的功能和作用机制
-
批准号:31870821
-
项目类别:面上项目
-
资助金额:56.0万元
-
批准年份:2018
-
负责人:陈江宁
-
依托单位:
基于small RNA 测序技术解析鸽分泌鸽乳的分子机制
-
批准号:31802058
-
项目类别:青年科学基金项目
-
资助金额:26.0万元
-
批准年份:2018
-
负责人:麻慧
-
依托单位:
Small RNA介导的DNA甲基化调控的水稻草矮病毒致病机制
-
批准号:31772128
-
项目类别:面上项目
-
资助金额:60.0万元
-
批准年份:2017
-
负责人:吴建国
-
依托单位:
基于small RNA-seq的针灸治疗桥本甲状腺炎的免疫调控机制研究
-
批准号:81704176
-
项目类别:青年科学基金项目
-
资助金额:20.0万元
-
批准年份:2017
-
负责人:赵继梦
-
依托单位:
水稻OsSGS3与OsHEN1调控small RNAs合成及其对抗病性的调节
-
批准号:91640114
-
项目类别:重大研究计划
-
资助金额:85.0万元
-
批准年份:2016
-
负责人:何祖华
-
依托单位: